Critical GitLab GraphQL Flaw (CVE-2026-19478) Allows Public Project Deletion
The newly discovered CVE-2026-19478 vulnerability proves that running a self-managed GitLab instance means you are fully responsible for the security perimeter. When a flaw allows unauthorized users to tamper with your repositories, the risk of data loss and supply chain compromise skyrockets (similar to the cascading damage caused by Terraform state drift in AWS). We … Read more